Описание
Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | released | 2.4.5-1ubuntu4.4 |
| lucid | DNE | |
| maverick | DNE | |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| upstream | needed |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | released | 2.5.2-2ubuntu6.2 |
| lucid | DNE | |
| maverick | DNE | |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| upstream | needed |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | released | 2.6.5-1ubuntu6.1 |
| maverick | ignored | end of life |
| natty | released | 2.6.6-6ubuntu7.1 |
| oneiric | released | 2.6.7-4ubuntu1.1 |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| upstream | needed |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | |
| hardy | DNE | |
| lucid | DNE | |
| maverick | ignored | end of life |
| natty | released | 2.7.1-5ubuntu2.2 |
| oneiric | released | 2.7.2-5ubuntu1.1 |
| precise | not-affected | 2.7.3~rc2-2 |
| quantal | not-affected | |
| raring | not-affected |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | released | 3.1.2-0ubuntu3.2 |
| maverick | ignored | end of life |
| natty | released | 3.1.3-1ubuntu1.2 |
| oneiric | DNE | |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| upstream | needed |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | DNE | |
| maverick | DNE | |
| natty | released | 3.2-1ubuntu1.2 |
| oneiric | released | 3.2.2-0ubuntu1.1 |
| precise | released | 3.2.3-0ubuntu3.2 |
| quantal | released | 3.2.3-6ubuntu3.1 |
| raring | DNE | |
| upstream | needed |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 3.3.2-7ubuntu2 |
| hardy | DNE | |
| lucid | DNE | |
| maverick | DNE | |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| quantal | not-affected | 3.3.0-1 |
| raring | not-affected | 3.3.1-1ubuntu5 |
| upstream | needed |
Показывать по
Ссылки на источники
EPSS
1.9 Low
CVSS2
Связанные уязвимости
Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file.
Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file.
Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissio ...
Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file.
EPSS
1.9 Low
CVSS2